Coming soon - Get a detailed view of why an account is flagged as spam!
view details

This post has been de-listed

It is no longer included in search results and normal feeds (front page, hot posts, subreddit posts, etc). It remains visible only via the author's post history.

1
TZ200 with Site to Site and Tunnel Interface VPNs but can't get traffic to pass between
Post Body

I have a TZ200 on 5.9.1.13-5o serving as my "HQ" firewall. 5 remote sites with TZ100 or TZ105 connected via site to site. All traffic passes between all sites without issue. I added an Azure Tunnel connection. Traffic passes from HQ TZ200 to Azure and vice versa, but I can not get it to allow traffic between the remote sites and the Azure subnet. Is this even possible? My Azure side is definitely allowing the remote subnets from what I can see in my configuration and packet monitor when I ping from an Azure host. I verified I added the Azure subnet to my remote network policy on the remotes as well. I see the VPN tunnel for each subnet come up green. I even added a route on the TZ200 side out of desperation but no dice. Packet monitor shows captured icmp packets with both the status of consumed and forwarded. I assumed they would all be consumed.

Author
Account Strength
90%
Account Age
5 years
Verified Email
Yes
Verified Flair
No
Total Karma
659
Link Karma
341
Comment Karma
270
Profile updated: 5 days ago
Posts updated: 2 weeks ago

Subreddit

Post Details

We try to extract some basic information from the post title. This is not always successful or accurate, please use your best judgement and compare these values to the post title and body for confirmation.
Posted
5 years ago